AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-10119

HIGH · CVSS 7.8 EPSS 1.98%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-04-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-10119
Severity
HIGH
CVSS
7.8
EPSS
1.98%
Office

Original NVD Description

sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, which allows remote attackers to cause a denial of service (use-after-free with write access) or possibly have unspecified other impact via a crafted document that uses the structured storage ole2 wrapper file format.